Solved

Exchange Server 2013 Enterprise - Error MSExchange ADAccess Event ID 4113

Posted on 2016-08-01
7
213 Views
Last Modified: 2016-10-12
I am having an issue with my Exchange Server saying:

Log Name:      Application
Source:        MSExchange ADAccess
Date:          8/1/2016 9:10:17 AM
Event ID:      4113
Task Category: General
Level:         Error
Keywords:      Classic
User:          N/A
Computer:      server
Description:
Process powershell.exe (EMS) (PID=25908). Component: Microsoft.Exchange.Data.Directory.ConfigurationSettingsADNotificationException: Error running AD operation. ---> Microsoft.Exchange.Data.Directory.ADTransientException: Could not find any available Domain Controller.
   at Microsoft.Exchange.Data.Directory.ConnectionPoolManager.GetConnection(ConnectionType connectionType, String partitionFqdn, ADObjectId domain, String serverName, Int32 port, NetworkCredential credential)
   at Microsoft.Exchange.Data.Directory.ADDataSession.GetConnection(String preferredServer, Boolean isWriteOperation, String optionalBaseDN, ADObjectId& rootId, ADScope scope)
   at Microsoft.Exchange.Data.Directory.ADDataSession.GetReadConnection(String preferredServer, String optionalBaseDN, ADObjectId& rootId, ADRawEntry scopeDeteriminingObject)
   at Microsoft.Exchange.Data.Directory.ADDataSession.InternalFind[TResult](ADObjectId rootId, String optionalBaseDN, ADObjectId readId, QueryScope scope, QueryFilter filter, SortBy sortBy, Int32 maxResults, IEnumerable`1 properties, Boolean includeDeletedObjects)
   at Microsoft.Exchange.Data.Directory.ADDataSession.Find[TResult](ADObjectId rootId, QueryScope scope, QueryFilter filter, SortBy sortBy, Int32 maxResults, IEnumerable`1 properties, Boolean includeDeletedObjects)
   at Microsoft.Exchange.Data.Directory.ADDataSession.Find[TResult](ADObjectId rootId, QueryScope scope, QueryFilter filter, SortBy sortBy, Int32 maxResults)
   at Microsoft.Exchange.Data.Directory.SystemConfiguration.ADSystemConfigurationSession.GetRootOrgContainer(String partitionFqdn, String domainController, NetworkCredential credential)
   at Microsoft.Exchange.Data.Directory.SystemConfiguration.ConfigurationSettings.ADConfigDriver.<>c__DisplayClass2.<LoadSettings>b__0()
   at Microsoft.Exchange.Data.Directory.ADNotificationAdapter.RunADOperation(ADOperation adOperation, Int32 retryCount)
   at Microsoft.Exchange.Data.Directory.ADNotificationAdapter.TryRunADOperation(ADOperation adOperation, Int32 retryCount)
   --- End of inner exception stack trace ---. Unable to load application settings. Exception: '%4'
Event Xml:
<Event xmlns="http://schemas.microsoft.com/win/2004/08/events/event">
  <System>
    <Provider Name="MSExchange ADAccess" />
    <EventID Qualifiers="49152">4113</EventID>
    <Level>2</Level>
    <Task>1</Task>
    <Keywords>0x80000000000000</Keywords>
    <TimeCreated SystemTime="2016-08-01T14:10:17.000000000Z" />
    <EventRecordID>637930</EventRecordID>
    <Channel>Application</Channel>
    <Computer>server</Computer>
    <Security />
  </System>
  <EventData>
    <Data>powershell.exe (EMS)</Data>
    <Data>25908</Data>
    <Data>Microsoft.Exchange.Data.Directory.ConfigurationSettingsADNotificationException: Error running AD operation. ---&gt; Microsoft.Exchange.Data.Directory.ADTransientException: Could not find any available Domain Controller.
   at Microsoft.Exchange.Data.Directory.ConnectionPoolManager.GetConnection(ConnectionType connectionType, String partitionFqdn, ADObjectId domain, String serverName, Int32 port, NetworkCredential credential)
   at Microsoft.Exchange.Data.Directory.ADDataSession.GetConnection(String preferredServer, Boolean isWriteOperation, String optionalBaseDN, ADObjectId&amp; rootId, ADScope scope)
   at Microsoft.Exchange.Data.Directory.ADDataSession.GetReadConnection(String preferredServer, String optionalBaseDN, ADObjectId&amp; rootId, ADRawEntry scopeDeteriminingObject)
   at Microsoft.Exchange.Data.Directory.ADDataSession.InternalFind[TResult](ADObjectId rootId, String optionalBaseDN, ADObjectId readId, QueryScope scope, QueryFilter filter, SortBy sortBy, Int32 maxResults, IEnumerable`1 properties, Boolean includeDeletedObjects)
   at Microsoft.Exchange.Data.Directory.ADDataSession.Find[TResult](ADObjectId rootId, QueryScope scope, QueryFilter filter, SortBy sortBy, Int32 maxResults, IEnumerable`1 properties, Boolean includeDeletedObjects)
   at Microsoft.Exchange.Data.Directory.ADDataSession.Find[TResult](ADObjectId rootId, QueryScope scope, QueryFilter filter, SortBy sortBy, Int32 maxResults)
   at Microsoft.Exchange.Data.Directory.SystemConfiguration.ADSystemConfigurationSession.GetRootOrgContainer(String partitionFqdn, String domainController, NetworkCredential credential)
   at Microsoft.Exchange.Data.Directory.SystemConfiguration.ConfigurationSettings.ADConfigDriver.&lt;&gt;c__DisplayClass2.&lt;LoadSettings&gt;b__0()
   at Microsoft.Exchange.Data.Directory.ADNotificationAdapter.RunADOperation(ADOperation adOperation, Int32 retryCount)
   at Microsoft.Exchange.Data.Directory.ADNotificationAdapter.TryRunADOperation(ADOperation adOperation, Int32 retryCount)
   --- End of inner exception stack trace ---</Data>
  </EventData>
</Event>

I've been scouring the Internet and found things relating back to 2007 and 2010 but not 2013 in particular.  I've tried some of the 2010 items to no avail.  One of the issues I'm trying to get to the bottom to is the inability to access the properties of resource mailbox pages.  Where it was an old one or a new one, I get a 500 error when I try to edit it.

Anyone see this before or have any thoughts on how best to fix this?

Regards,

Jason
0
Comment
Question by:TIDIProducts
  • 3
  • 3
7 Comments
 
LVL 9

Accepted Solution

by:
DeBlackman earned 500 total points (awarded by participants)
ID: 41737533
How many domain controllers do you have? How many Active Directory Sites do you have identified in AD sites and Services? Do you have any Subnets identified in AD Sites and Services? Exchange is heavily reliant on this and if not configured properly you will have issues. How many physical locations do you have your domain controllers placed in?
0
 

Author Comment

by:TIDIProducts
ID: 41737548
Hi DeBlackman,

Currently I have a total of 5 domain controllers in 2 Active Directory Domains.  3 in my parent domain and 2 in my child domain.  Exchange resides in the parent domain.  I have a total of 4 sites defined in AD Sites and Services to coordinate with the physical site locations.  1 site for 2 locations in MI (because one of the sites has no AD servers in it), 1 site for HQ and 1 site for our hotsite.  The fourth site defined in there is a default first site that was created back in the day that currently has no servers assigned to it and no subnets assigned to it.  Subnets are created for all of those sites according to what's setup at each site.  I have 2 servers in MI sites, 2 in HQ site and 1 in Hotsite.  The servers that reside in each are virtual machines that are located on VM hosts in each site respectively.

Regards,

Jason
0
 

Author Comment

by:TIDIProducts
ID: 41737561
Another note.  When I do a check to determine what site the exchange server is part of, it reports the proper site where I have 2 domain controllers sitting.
0
How to run any project with ease

Manage projects of all sizes how you want. Great for personal to-do lists, project milestones, team priorities and launch plans.
- Combine task lists, docs, spreadsheets, and chat in one
- View and edit from mobile/offline
- Cut down on emails

 
LVL 9

Expert Comment

by:DeBlackman
ID: 41737576
If your default site is empty and has no subnets associated with it, I recommend to delete it.

Check you domain controllers - do you see any AD related errors or warnings being generated in event logs?
0
 

Assisted Solution

by:TIDIProducts
TIDIProducts earned 0 total points (awarded by participants)
ID: 41737604
On the System log of my FSMO DC I see a recurring Schannel error statis fatal error alert 70 was generated with an Internal state of 105.

On the Directory Service log I see an ActiveDirectory_DomainService 2887 error for the LDAP Interface where it comments about rejecting binds from SASL or LDAP.

NtFrs Event ID 13562 that I was looking into.  Talking about a conflict between two objects pointing to the same server name from the way it appears.  Related to the sites and services extra site perhaps?
0
 
LVL 9

Expert Comment

by:DeBlackman
ID: 41763500
inactive post
0
 

Expert Comment

by:Member_2_6552605
ID: 41840357
use run as admin for exch powershell
0

Featured Post

Complete VMware vSphere® ESX(i) & Hyper-V Backup

Capture your entire system, including the host, with patented disk imaging integrated with VMware VADP / Microsoft VSS and RCT. RTOs is as low as 15 seconds with Acronis Active Restore™. You can enjoy unlimited P2V/V2V migrations from any source (even from a different hypervisor)

Join & Write a Comment

We are happy to announce a brand new addition to our line of acclaimed email signature management products – CodeTwo Email Signatures for Office 365.
Following basic email etiquette rules will help you write a professional email and achieve a good, lasting impression with your contacts.
To show how to create a transport rule in Exchange 2013. We show this process by using the Exchange Admin Center. Log into Exchange Admin Center.: First we need to log into the Exchange Admin Center. Navigate to the Mail Flow >> Rules tab.:  To cr…
This tutorial will walk an individual through the process of transferring the five major, necessary Active Directory Roles, commonly referred to as the FSMO roles to another domain controller. Log onto the new domain controller with a user account t…

707 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question

Need Help in Real-Time?

Connect with top rated Experts

16 Experts available now in Live!

Get 1:1 Help Now